Announcement

Collapse
No announcement yet.

Where is Asher's Mac Attack?

Collapse
X
 
  • Filter
  • Time
  • Show
Clear All
new posts

  • Where is Asher's Mac Attack?

    After reading this article on the new Apple MacBook Pro in today's NY Times, I was sure I'd come to Poly and see the usual "overpriced, under-featured, stupid design" rant from Asher. Myopic though he may be, I respect his knowledge of computer technology and enjoy reading his take on that topic area.

    Has anyone gotten their hands on one of these yet?
    Apolyton's Grim Reaper 2008, 2010 & 2011
    RIP lest we forget... SG (2) and LaFayette -- Civ2 Succession Games Brothers-in-Arms

  • #2
    Dont give a **** about mac(MacTel?) and wintel but...
    this article seem pretty biaised!

    It seem like myself when i found in love... i begin to overqualify the girl(poor girl)! This article seem to overqualify the Apple Laptop
    bleh

    Comment


    • #3
      For a more thorough review:

      Apple's portables have been stuck in a system bandwidth mire for years with …


      Its basically a Powerbook, but with an Intel powering it, not to mention a LOT LESS software to run it on. AFAIK, there isn't a MacIntel version of Office yet. The magnetic powercord looks like a pain in the ass. But it sure is purty, though. And it seems they improved the screen.
      Let us be lazy in everything, except in loving and drinking, except in being lazy – Lessing

      Comment


      • #4
        Apple's portables have been stuck in a system bandwidth mire for years with …



        backlight in keyboard!! Coool
        bleh

        Comment


        • #5
          He's hiding because his accusations of Mac viruses proved unfounded. Apple fixed the so-called problems (basically gave users an additional warning) the other day.

          And his computer knowledge is marred by the fact that he just makes **** up.

          Its basically a Powerbook, but with an Intel powering it, not to mention a LOT LESS software to run it on. AFAIK, there isn't a MacIntel version of Office yet. T


          Office and all other OS X apps will run seamlessly on the new Intel Macs.
          Only feebs vote.

          Comment


          • #6
            Office and all other OS X apps will run seamlessly on the new Intel Macs.
            With emulation, so it'll be slow...
            Let us be lazy in everything, except in loving and drinking, except in being lazy – Lessing

            Comment


            • #7
              Originally posted by nostromo

              With emulation, so it'll be slow...
              Apparently not. Things like Photoshop will be slow, but as long as you have plenty of RAM Office runs fine I am told.

              The new "Core Duo" iMac is the first Macintosh to ship with Intel Inside. Ars …
              Last edited by Agathon; March 2, 2006, 16:25.
              Only feebs vote.

              Comment


              • #8
                Originally posted by Agathon
                He's hiding because his accusations of Mac viruses proved unfounded. Apple fixed the so-called problems (basically gave users an additional warning) the other day.

                And his computer knowledge is marred by the fact that he just makes **** up.
                No, that would be you Aggie. I'm the scientist who lives in the world of facts and theories backed up by facts, you're the philosopher that gets paid to pull **** out of your ass and call it academic.

                You and UR got owned very nicely the other day in your defense of the security problems in MacOS X. You both ignored the thread after repeated bumps for you to reply.

                You've constantly told me I "make things up" by saying things like market share has a direct impact on how much malware a system has. I've replied that it's a known fact by security experts, and I backed that up with many articles and quotes from those people. You ignored that thread, then in other threads continue telling people I make stuff up.

                Put simply, Agathon, you are a completely ignorant fanboy when it comes to computers. Everyone should honestly dismiss your opinion and UR's opinion outright, because more often than not it's way off and completely incorrect. I still see you posting "www.apple.com" to people who complain about malware, even after I posted articles from security experts cautioning against that type of thing explicitly.

                Here are the articles, for your reference:
                .xyz is for every website, everywhere.® We offer the most flexible and affordable domain names to create choice for the next generation of internet users.


                Is Mac OS as safe as ever?
                By Joris Evers
                Staff Writer, CNET News.com
                Published: February 27, 2006, 4:00 AM PST

                Apple Computer fans have long loved to point out the safety of using Mac OS X, which has mostly been left to its own devices by hackers. But the arrival of three threats has some asking: Is the software's charmed security life over?

                In the past two weeks, a pair of worms that target Mac OS X have been discovered, along with an easily exploitable, severe security flaw. The vulnerability exposes Mac users to risks that are more familiar to Windows owners: the installation of malicious code through a bad Web site or e-mail.

                While these threats represent a sea change, there is no need for Mac owners to worry, experts said, as the published attacks are still mainly theoretical and not widespread. But they caution that Apple fans should not be smug: Now that it's been done, other malicious code writers are likely to turn their attention to the operating system.

                It's a "small step in malicious code development for OS X," said Kevin Long, an analyst at security specialist Cybertrust and a Mac user for 11 years. "The message we need to get out there is that Mac users should not be complacent."

                While Microsoft Windows users have grown accustomed to a seemingly incessant stream of computer worms, viruses and security vulnerabilities, the same is not true for Mac owners. Going by forum postings, many Apple customers believe their systems are much better protected against cyberattacks than the average Windows PC.

                "Mac malware is not a myth. It is very real," said Kevin Finisterre, a security researcher at Digital Munition. Finisterre created the Inqtana worm, which targets Mac OS X and spreads using an 8-month-old vulnerability in Apple's Bluetooth software. "My point with Inqtana was to say, 'Hey! Wake up!'" he said.

                Finisterre did not release his worm into the wild. He created Inqtana only to prove a point and to encourage antivirus makers to update their products against malicious software using the same method of attack, he said. Furthermore, Inqtana was programmed so that it could never spread far.

                "Go buy yourself some antivirus software, keep your Apple updates current and stop pretending that you are invincible, because you are not," Finisterre advised Mac users.

                The risk for Apple system users grows slightly every day, Long said. The number of people using Macs is growing, which makes attacks more likely, he said. Some have suggested that Mac OS X's previous immunity to threats is due partly to malicious coders focusing on Microsoft products, which have a much larger user base and so bring a much bigger scope for impact.

                "Many think that the Macintosh operating system is impervious to viruses or these kind of security threats. It is not that they are impervious; they are targeted less," said Craig Schmugar, virus research manager at McAfee.


                'Don't freak out'
                The events of the last two weeks could change that. Hackers have had their interest in Apple piqued, Finisterre said. "It is a semi-new frontier, so to speak," he said.

                Even so, the incidents likely won't have any significant fallout, Long said. "Hopefully, the end result is that people are a little more careful. They don't need to freak out about this," he said.

                Many Mac users seem unfazed.

                "I don't see myself changing any habits or panicking and running out to grab antivirus," CNET News.com reader Shane Walker wrote in an e-mail. "I am concerned, but not overly so. You just need to take the right precautions, watch your e-mail attachments and what you download like a hawk, and try to avoid known or seemingly questionable sites."

                Another CNET News.com reader, using the initials J.G., said the three incidents don't bother him. "They are 'proof of concept,' not actual malware loose in the wild," the reader wrote in an e-mail. "I think much of the attention now being focused on Macs and OS X will dissipate in a few months."

                So far, there have been no reports of any Mac systems infected with the Inqtana worm. The other OS X security incidents have had little impact on people either, experts said. Leap.A, considered to be the first first Mac operating system worm, was publicly posted on an online Mac message board, but did not make it onto many computers.

                The most serious incident was perhaps the public disclosure of a serious and easily exploitable flaw in the Apple operating system, which could be a conduit for intruders to install malicious code on computers running the software. Attack code that takes advantage of the security hole was quickly posted on the Internet.

                The problem lies in the way Mac OS X associates files with applications, and it could be exploited to hit a Mac via the Safari Web browser or Apple Mail, experts said. Apple has said it is working on a fix for the flaw. So far, no attacks based on the bug have been spotted on the Web.

                Easier to hit?
                Overall, only a few currently known worms, viruses and Trojans target the Mac, McAfee's Schmugar said. Nevertheless, people should not ignore the danger. "There does not have to be more than 150,000 threats for Macs before it's a security concern," he said, referring to the number of known Windows pests.

                A machine running Apple's operating system might actually be easier to hit than a Windows PC, Schmugar said. "There are fewer and less evolved defenses around a Mac, because there have been fewer threats against it," he said. "The success rate for getting malicious code to run is probably greater."

                The Mac maker is taking measures to sew up the latest hole in its operating system. "Apple takes security very seriously," a company representative said. "We're working on a fix so that this doesn't become something that could affect customers." The representative could not say when the patch would be ready.

                Long recommends two tweaks to the OS X settings to make it more secure: enabling the firewall and disabling the "open safe files after downloading" option in the Safari preferences. That last option, if not locked up, could be exploited to trick people into downloading malicious code onto their Macs, he said.

                All in all, this is not significant enough to dent user confidence in Mac OS X as a secure operating system, said Ray Wagner, an analyst at Gartner. "Given that the most recent vulnerability does not spawn an attack before being patched--an unknown--there is not enough impact on the average user to cause a significant change in behavior," he said.

                Apple is advising its customers to consult its online safety guide and to be cautious when surfing the Web. "Apple always advises Mac users to only accept files from vendors and Web sites that they know and trust," the company representative said.

                Asked if the Mac, compared with Windows, is still the obvious safer choice for people on the Internet, Gartner's Wagner simply replied: "Yes."


                Apple's in the eye of flaw finders
                Robert Lemos, SecurityFocus 2006-02-07

                At the recent ShmooCon hacking conference, one security researcher found out the hard way that such venues can be hostile, when an unknown hacker took control of the researcher's computer, disabling the firewall and starting up a file server.

                “ This is almost certainly the year of the OS X exploit. The OS X platform may be based on a Unix platform, but Apple seems to be making mistakes that Unix made, and corrected, long ago. ”

                Jay Beale, senior security consultant, Intelguardians
                While such compromises have become common in the Windows world, this time the computer was a Apple PowerBook running the latest version of Mac OS X. The victim, a security researcher who asked to remain anonymous, had locked down the system prior to the conference and believes that a previously unknown exploit caused the compromise. However, in the following weeks, forensics performed on the system did not reveal any clues as to how the PowerBook had been compromised.

                "The machine was as hardened as best practices could suggest for anyone," the researcher said. The person who breached the PowerBook used information gathered from the computer to contact a friend of the researcher and bragged about the compromise. "This was not a subtle hack," the researcher stressed.

                The compromise underscores a number of trends that has already caused a shift in focus among flaw finders and could result in more attacks on Mac OS X. Security researchers themselves have moved over to Apple computers in the past few years and have learned the ins and outs of the operating system. The company's move to Intel-based hardware for its next-generation of Macs also gives flaw finders familiar territory in which to look for bugs. Finally, as Apple continues to garner more market share, the lure of a larger set of targets will make attacks more likely, say security researchers.

                "This is almost certainly the year of the OS X exploit," said Jay Beale, a senior security consultant for Intelguardians and an expert in hardening Linux and Mac OS X systems. "The OS X platform may be based on a Unix platform, but Apple seems to be making mistakes that Unix made, and corrected, long ago."

                Apple also has been widely criticized for not talking about the details of its vulnerability-response process or how it manages security incidents. While Microsoft has the lion's share of security problems--and the Mac OS X hardly any--the Redmond, Wash., based software giant has received high marks from security researchers for its responsiveness, while Apple has often been the focus of complaints.

                "On a good day, Apple doesn't even make it to Microsoft's level of security awareness," Beale said.

                The company has generally refused to discuss the security of its Mac OS X operating system with the media and declined to comment for this article. The security researcher whose PowerBook was compromised has discussed the issue with Apple but without any conclusions being reached.

                Apple has made good decisions regarding the Mac OS X architecture and has had far fewer security problems as a result, said Adam Shostack, chief technology officer for security firm Reflective.

                "There are some things that make the Mac more secure," Shostack said. "There is a user model that does not rely on a user running programs in administrator mode. There is no ActiveX in Safari and there is no ActiveX equivalent. That makes it harder to go to a web page and have your Mac compromised."

                Yet, the platform is garnering more attention from the experts who search for vulnerabilities. Driven by the cool look of the Mac OS X and the ability to run most Unix and Linux security tools on the system, Apple's operating system has become popular among security researchers.

                That popularity could be the reason that the number of vulnerabilities logged in Apple's Mac OS X surpassed the number of vulnerabilities found in Microsoft's Windows XP in 2004 and 2005, according to data from the National Vulnerability Database (NVD). Apple had to contend with 88 vulnerabilities (29 high severity ones) in the Mac OS X in 2005, up from 54 in the prior year, while Microsoft patched 61 vulnerabilities (38 deemed of high severity) in Windows XP in 2005, up from 44 the prior year, according to the NVD. The data does show that fewer of the flaws in Mac OS X were considered severe.

                Such numbers always have to be taken with a grain of salt. Differing ways of reporting flaws, different editorial policies on the part of the vulnerability database staff and differences between what software components are considered part of the operating system all combine to make vulnerability statistics less than authoritative.

                However, some security researchers speculate that the number of flaws found in the future will increase. Apple's change to the Intel platform will put many security researchers in their comfort zone in dealing with the architecture. While the change will not mean much for application-level vulnerabilities, flaws in the memory architecture or in processor-specific functions could be found more easily, Reflective's Shostack said.

                "OS X running on x86 means that the skills that people have developed and a lot of the tools people have created for finding problems, analyzing problems and writing the code to take advantage of them will work," he said. "They no longer need to learn a different assembler or a different memory architecture."

                Finally, the old adage about market share still holds, said Dan Kaminsky, an independent consultant for Doxpara Research. As Macs become more popular, attackers will tend to target the platform more often, he said.

                "There just aren't that many Mac users right now," Kaminsky said. "As it gets put on more and more desk tops, it becomes a pretty high-profile target in terms of what is your return on investment for committing an attack against the group."

                Ironically, Apple's lack of experience with major attacks might also cause problems for the company and its users, Kaminsky said.

                "The reality is that security work does comes from a trial by fire," he said. "And Apple really has not had that experience. It had not had the experience from some 20 years that Unix had and that Linux has absorbed. It has not had the experience that Microsoft had with its summer of worms."

                Yet, it's almost certain the experience will come, he said.
                ------------------------

                As for the MacBook Pro -- the mind boggles, there are better laptops for the price. That MagSafe sounds like a huge pain in the ass, according to the ArsTechnica review where it comes off repeatedly when using the laptop on the lap. I do understand that Mac users tend to be pretty stupid, but when Apple keeps adding features like this to help protect stupid people from damaging their own hardware is a significant detriment to everyone else, it becomes annoying. One of my main beefs with Apple in general.

                The "Pro" moniker is a bit of a joke, too. It's got a mid-range consumer video chip without support for professional color profiling, and lacks Firewire 800. Professionals would be better off with a T43p ThinkPad, with the high-end professional FireGL graphics chip, and biometric security in the form of a fingerprint scanner and integrated security chip.
                "The issue is there are still many people out there that use religion as a crutch for bigotry and hate. Like Ben."
                Ben Kenobi: "That means I'm doing something right. "

                Comment


                • #9
                  Originally posted by cronos_qc
                  Dont give a **** about mac(MacTel?) and wintel but...
                  this article seem pretty biaised!
                  Worse, it lacks a handy summary of prestanda.

                  I mean, I have boobs to ogle and articles about dead reptiles to read; yet do they expect me to read their review without them even providing something so basic. Here's hoping their advertizing customers smarten up and find a paper that tries to attract readers.

                  [/rant]
                  Why can't you be a non-conformist just like everybody else?

                  It's no good (from an evolutionary point of view) to have the physique of Tarzan if you have the sex drive of a philosopher. -- Michael Ruse
                  The Nedaverse I can accept, but not the Berzaverse. There can only be so many alternate realities. -- Elok

                  Comment


                  • #10
                    Originally posted by Asher

                    ... I'm the scientist ...
                    have I misunderstood something ? I thought that you were studying comp science - not that you had finished that study and thereby could call yourself a scientist.
                    With or without religion, you would have good people doing good things and evil people doing evil things. But for good people to do evil things, that takes religion.

                    Steven Weinberg

                    Comment


                    • #11
                      Real question, if Macs now use Intel processors does that mean that future Mac OSes will be able to be installed on regular PCs? It seems like that might provide a viable alternative to Windows since Linux hasn't done so.
                      Try http://wordforge.net/index.php for discussion and debate.

                      Comment


                      • #12
                        Originally posted by BlackCat
                        have I misunderstood something ? I thought that you were studying comp science - not that you had finished that study and thereby could call yourself a scientist.


                        Word of advice: As someone who is not a native speaker of English, try to avoid trying to correct people who are native English speakers.

                        The world's leading online dictionary: English definitions, synonyms, word origins, example sentences, word games, and more. A trusted authority for 25+ years!


                        It is not a requirement to have completed a bachelor's degree to be called a scientist. It is more of a description of a state of mind and approach to discovery and research than anything else.

                        I'm half done the remaining computer courses of my degree, with just 1.5 months left. Either way, the pedantic argument like yours is a sign of a weak mind and a limp dick.
                        "The issue is there are still many people out there that use religion as a crutch for bigotry and hate. Like Ben."
                        Ben Kenobi: "That means I'm doing something right. "

                        Comment


                        • #13
                          Originally posted by Oerdin
                          Real question, if Macs now use Intel processors does that mean that future Mac OSes will be able to be installed on regular PCs? It seems like that might provide a viable alternative to Windows since Linux hasn't done so.
                          Not legally, Apple doesn't like "choice".
                          "The issue is there are still many people out there that use religion as a crutch for bigotry and hate. Like Ben."
                          Ben Kenobi: "That means I'm doing something right. "

                          Comment


                          • #14
                            Originally posted by Asher



                            Word of advice: As someone who is not a native speaker of English, try to avoid trying to correct people who are native English speakers.

                            The world's leading online dictionary: English definitions, synonyms, word origins, example sentences, word games, and more. A trusted authority for 25+ years!
                            More proof that English is a stupid language.
                            Why can't you be a non-conformist just like everybody else?

                            It's no good (from an evolutionary point of view) to have the physique of Tarzan if you have the sex drive of a philosopher. -- Michael Ruse
                            The Nedaverse I can accept, but not the Berzaverse. There can only be so many alternate realities. -- Elok

                            Comment


                            • #15
                              Originally posted by Asher



                              Word of advice: As someone who is not a native speaker of English, try to avoid trying to correct people who are native English speakers.

                              The world's leading online dictionary: English definitions, synonyms, word origins, example sentences, word games, and more. A trusted authority for 25+ years!


                              It is not a requirement to have completed a bachelor's degree to be called a scientist. It is more of a description of a state of mind and approach to discovery and research than anything else.

                              I'm half done the remaining computer courses of my degree, with just 1.5 months left. Either way, the pedantic argument like yours is a sign of a weak mind and a limp dick.
                              Asher, you keep on amazinig me.

                              Unless you are some kind of wonderchild, I find it very difficult to call a student a scientist. Please present the evidence that you are not a simple student but a real scientist with special capacities

                              About the english, well, you are as usual displaying your ignorance - even in danish terms you can be a scientist without a degree, but then you have to be pretty good in the subject - you haven't displayed such.
                              With or without religion, you would have good people doing good things and evil people doing evil things. But for good people to do evil things, that takes religion.

                              Steven Weinberg

                              Comment

                              Working...
                              X